Daily Writeups
3.52K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: How Attackers Exploit Kubernetes APIs to Establish Persistence
════════════════════════
𐀪 Author: Sadi Zane
════════════════════════
Time: Sun, 26 Jan 2025 19:55:03 GMT
════════════════════════
Tags: #azure_kubernetes_service #cybersecurity #kubernetes_security #devops_security #aks_security
Title: How to Implement Zero Trust Security in DevOps
════════════════════════
𐀪 Author: DevOps Dojo
════════════════════════
Time: Mon, 24 Feb 2025 22:04:56 GMT
════════════════════════
Tags: #cloud_security #cybersecurity #devsecops #devops_security #zero_trust
Title: DevSecOps in 2025: 11 Must-Have Tools to Build Fast and Stay Secure
════════════════════════
𐀪 Author: Sam Bishop
════════════════════════
Time: Tue, 27 May 2025 13:23:36 GMT
════════════════════════
Tags: #devops_security #devops_tool #cyber_security_awareness #cybersecurity #devsecops_tool
Title: Exploitation of Continuous Integration Pipelines for Supply Chain Compromise and Backdoor Injection
════════════════════════
𐀪 Author: Aaishh
════════════════════════
Time: Tue, 22 Jul 2025 04:11:52 GMT
════════════════════════
Tags: #devops_security #cybersecurity #ci_cd_pipeline #supply_chain_attack #continuous_integration
Title: GitLab Patch: Fixes CI/CD Credential Theft & Unauthenticated DoS Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 26 Nov 2025 23:17:52 +0000
════════════════════════
Tags: #Vulnerability Report #Authentication Bypass #CI/CD security #CVE_2024_9183 #CVE_2025_12571 #Denial of Service #DevOps Security #gitlab #security patch
Title: Automation Crisis: Critical 9.9 CVSS Flaw Exposes 103K n8n Instances to Full Takeover
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 24 Dec 2025 02:40:38 +0000
════════════════════════
Tags: #Vulnerability #Censys #CVE_2025_68613 #Cybersecurity 2025 #DevOps Security #n8n #Node.js #Patch Alert #RCE #remote code execution #Sandbox Escape #Workflow Automation
Title: The Worm in the Code: How the Shai-Hulud npm Attack Hijacked Trust Wallet
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Mon, 05 Jan 2026 03:20:52 +0000
════════════════════════
Tags: #Cybercriminals #Crypto Theft #DevOps Security #Github #InfoSec 2026 #JavaScript #malware #npm #Shai_Hulud #supply chain attack #Trust Wallet
Title: NodeCordRAT: The Trojan Hiding in NPM to Steal Crypto via Discord
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 09 Jan 2026 00:16:11 +0000
════════════════════════
Tags: #Malware #Cryptocurrency Theft #DevOps Security #Discord C2 #Malware Analysis #NodeCordRAT #npm #supply chain attack #Zscaler ThreatLabz
Title: VoidLink: The “Cloud-First” Malware Hunting Your Linux Servers
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 14 Jan 2026 00:21:17 +0000
════════════════════════
Tags: #Malware #Check Point Research #Chinese Threat Actor #Cloud Security #Cobalt Strike #container security #DevOps Security #eBPF #Kubernetes Security #Linux Malware #supply chain attack #VoidLink #Zig Programming Language
Title: Open Source, Open Access: 5 Million Servers Expose Critical Git Metadata and Credentials
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Tue, 10 Feb 2026 09:44:03 +0000
════════════════════════
Tags: #Data Leak #.git folder #Credential Theft #data leak #DevOps Security #Git #misconfiguration #Mysterium VPN #source code exfiltration #Tech News 2026 #version control #web server hardening
Title: GitLab Patch Alert: High-Severity Web IDE Flaw Exposes Private Repos
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 11 Feb 2026 01:58:57 +0000
════════════════════════
Tags: #Vulnerability Report #CI/CD #CVE_2025_7659 #Denial of Service #DevOps Security #gitlab #graphql #Markdown Vulnerability #Patch Alert #Token Theft #Web IDE
Title: CI/CD at Risk: High-Severity Jenkins XSS Flaw Exposes Build Environments
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 19 Feb 2026 14:01:29 +0000
════════════════════════
Tags: #Vulnerability Report #automation server #CI/CD security #Cross_Site Scripting #CVE_2026_27099 #CVE_2026_27100 #DevOps Security #Information Disclosure #Jenkins #Patch Alert #XSS
Title: The Tag Trap: How a Single Commit Swap Turned Xygeni’s GitHub Action into a Clandestine Backdoor
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 12 Mar 2026 07:21:26 +0000
════════════════════════
Tags: #Malware #CI/CD Security #DevOps Security #GitHub Actions #GitHub Token Theft #malware #RCE #StepSecurity #supply chain attack #Tag Poisoning #Tech News 2026 #v5 tag #Xygeni
1